We’d like to remind Forumites to please avoid political debate on the Forum.

This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.

📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

browser redirected

24

Comments

  • please explain what i have to upload thanks
  • closed
    closed Posts: 10,886 Forumite
    Delete the O4 - HKCU\..\Run: [dboledg] rundll32.exe "C:\Documents and Settings\tommy\Local Settings\Application Data\dboledg\dboledg.dll", DllInit

    entry in hijackthis, and reboot
    !!
    > . !!!! ----> .
  • i think this is what your your looking

    Authentium5.2.0.52010.02.22W32/Sinowal-based!Maximus
    F-Prot4.5.1.852010.02.22W32/Sinowal-based!Maximus
    Sophos4.50.02010.02.22Mal/Behav-365
    Symantec20091.2.0.412010.02.22Suspicious.Insight
  • closed
    closed Posts: 10,886 Forumite
    edited 22 February 2010 at 11:36PM
    see my previous post

    it looks like a relatively new one, which is why most AV's aren't detecting it
    !!
    > . !!!! ----> .
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    Download MALWAREBYTES (Make sure you click 'DOWNLOAD LATEST VERSION')
    http://www.filehippo.com/download_malwarebytes_anti_malware/
    Open malwarebytes and goto UPDATE and click 'check for updates'. After its updated goto SCANNER and click PERFORM FULL SCAN then click SCAN
    Post the COMPLETE log here AFTER youve deleted everything it finds
    :idea:
  • inver90
    inver90 Posts: 16 Forumite
    edited 22 February 2010 at 11:41PM
    have removed through hijack this and rebooted but the entry still remains at
    "C:\Documents and Settings\tommy\Local Settings\Application Data\dboledg\dboledg.dll", DllInit
  • closed
    closed Posts: 10,886 Forumite
    edited 22 February 2010 at 11:57PM
  • i have malwarebytes version 1.44
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    Can you please open malwarebytes, goto LOGS and post the WHOLE of the last log

    Please run COMBOFIX
    http://download.bleepingcomputer.com/sUBs/ComboFix.exe
    Shut down your anti virus
    Follow the simple instructions it gives
    Post the COMPLETE log it creates here (Split into sections if need be)

    If it comes up with a RENAMING error then RIGHT click the exe file and RENAME and call it QWERTY (Making the complete file name 'QWERTY.exe') Or SAVE as 'QWERTY' on download
    :idea:
  • Malwarebytes' Anti-Malware 1.44
    Database version: 3759
    Windows 5.1.2600 Service Pack 3
    Internet Explorer 7.0.5730.13
    18/02/2010 23:29:06
    mbam-log-2010-02-18 (23-29-06).txt
    Scan type: Quick Scan
    Objects scanned: 113312
    Time elapsed: 13 minute(s), 8 second(s)
    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 0
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 0
    Memory Processes Infected:
    (No malicious items detected)
    Memory Modules Infected:
    (No malicious items detected)
    Registry Keys Infected:
    (No malicious items detected)
    Registry Values Infected:
    (No malicious items detected)
    Registry Data Items Infected:
    (No malicious items detected)
    Folders Infected:
    (No malicious items detected)
    Files Infected:
    (No malicious items detected)
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 352.8K Banking & Borrowing
  • 253.8K Reduce Debt & Boost Income
  • 454.7K Spending & Discounts
  • 245.9K Work, Benefits & Business
  • 601.9K Mortgages, Homes & Bills
  • 177.7K Life & Family
  • 259.8K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16K Discuss & Feedback
  • 37.7K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.